Show filters
80 Total Results
Displaying 41-50 of 80
Sort by:
Attacker Value
Unknown

CVE-2004-1072

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and possibly execute arbitrary code.
0
Attacker Value
Unknown

CVE-2004-1098

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header.
0
Attacker Value
Unknown

CVE-2004-1190

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices.
0
Attacker Value
Unknown

CVE-2004-0949

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.
0
Attacker Value
Unknown

CVE-2004-0956

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
MySQL before 4.0.20 allows remote attackers to cause a denial of service (application crash) via a MATCH AGAINST query with an opening double quote but no closing double quote.
0
Attacker Value
Unknown

CVE-2004-1071

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly handle a failed call to the mmap function, which causes an incorrect mapped image and may allow local users to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2004-0883

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from outside the samba packet to the smb_proc_readX function, (3) sending a certain TRANS2 fragmented packet to the smb_receive_trans2 function, (4) sending a samba packet with a certain header size to the smb_proc_readX_data function, or (5) sending a certain packet based offset for the data in a packet to the smb_receive_trans2 function.
0
Attacker Value
Unknown

CVE-2004-1170

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.
0
Attacker Value
Unknown

CVE-2004-1154

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2004-1070

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensitive memory in a setuid program and execute arbitrary code.
0